A critical vulnerability in the ServiceNow AI Platform is being actively exploited by threat actors, allowing unauthenticated users to execute arbitrary code. The flaw, identified as CVE-2026-6875, has a high CVSS score of 9.5 and enables sandbox escape, making it a significant concern for security teams. Defused Cyber has reported observing in-the-wild exploitation of this vulnerability, highlighting the need for immediate attention. Patches are available to address the issue, but the exploitation status is still being discussed, including involvement from Intel1. The fact that this vulnerability is being exploited in the wild underscores the importance of prompt patching to prevent potential attacks. This matters to security practitioners because the exploitation of CVE-2026-6875 could lead to significant security breaches if left unaddressed.
Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution
⚠️ Critical Alert
Why This Matters
CVE-2026-6875 is in active discussion involving Intel — exploitation status determines whether this is patch-now or monitor.
References
- The Hacker News. (2026, July 21). Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution. *The Hacker News*. https://thehackernews.com/2026/07/critical-servicenow-ai-platform-flaw.html
Original Source
The Hacker News
Read original →